A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/normalize_model.cpp may lead to context-dependent arbitrary code execution.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw-bin"
},
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw-bin-dbgsym"
},
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw-dev"
},
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw-doc"
},
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw15"
},
{
"binary_version": "0.17.1-1ubuntu0.5",
"binary_name": "libraw15-dbgsym"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw-bin"
},
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw-bin-dbgsym"
},
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw-dev"
},
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw-doc"
},
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw16"
},
{
"binary_version": "0.18.8-1ubuntu0.3",
"binary_name": "libraw16-dbgsym"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw-bin"
},
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw-bin-dbgsym"
},
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw-dev"
},
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw-doc"
},
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw19"
},
{
"binary_version": "0.19.5-1ubuntu1",
"binary_name": "libraw19-dbgsym"
}
]
}